Digital Operations Analyst - IT Controls
Our IT Controls team is looking for an IT controls professional with extensive expertise in IT SOX and a deep understanding of systems and processes. If you are a motivated individual with strong technical and communication skills, and the ability to build effective relationships, you may be the perfect fit for our high-performing team!
Minimum Requirements:
- Strong understanding of IT governance, risk management, and internal control frameworks, including COBIT and ITIL
- Experience managing engagements with control owners, internal teams, and external stakeholders for compliance with IT management frameworks
- Ability to explain the objectives of IT internal controls and ensure that proposals for control improvements are align with strategic objectives and risks
- Experience in risk management, IT auditing, or compliance, with a focus on technology environments (SAP, Workday, ServiceNow, Microsoft Azure)
- A relevant professional certification (e.g., CISA, CISSP, CPA, or similar) and 6 years of experience in IT controls, risk management, or compliance
Responsibilities:
- Partner with Digital & Information Technology (D&IT) to design, document, and implement cost-effective internal controls for IT General Controls (ITGCs). Ensure these controls align with Suncor’s policies, standards, and reporting requirements, with an emphasis on IT-specific areas such as access management, data integrity, and change management
- Supporting compliance with Suncor’s Management IT Controls Framework by conducting thorough risk assessments, providing guidance on IT control design based on identified risks, and performing self-assessment activities to evaluate the adequacy and effectiveness of IT controls across systems and applications
- Developing and maintaining templates and documentation necessary for ITGC Controls Framework compliance, ensuring clarity and consistency in IT control processes
- Maintaining a centralized document repository that tracks IT control registers, review cycles, and self-assessment schedules, facilitating transparency and accessibility for all IT control activities
- Collaborating with deficiency owners to recommend and implement corrective actions for incident closures, ensuring proper documentation of IT control deficiencies and updates in the centralized controls register for IT Controls Approval
- Liaise with internal and the external stakeholders as part of the overall ICFR requirements for Suncor
Location and other Key Details:
- This is an office-based role. You will work out of our Calgary head office, located in the Suncor Energy Centre at 150 – 6th Ave S.W.
- Hours of work are a regular 40-hour work week, Monday to Friday